Researchers Detail Kubernetes Vulnerability That Enables Windows Node Takeover

March 14, 2024 at 08:51AM A high-severity flaw in Kubernetes, CVE-2023-5528, allowed attackers to execute code with SYSTEM privileges on Windows endpoints. Exploiting a loophole involving local volumes, an attacker could inject commands to achieve remote code execution. The flaw impacted kubelet versions 1.8.0 and after and was patched in updates released on November 14, … Read more